CVE Vulnerabilities

CVE-2009-2813

Published: Sep 14, 2009 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6 MEDIUM
AV:N/AC:M/Au:S/C:P/I:P/A:P
RedHat/V2
2.9 LOW
AV:A/AC:H/Au:S/C:P/I:P/A:N
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Samba 3.4 before 3.4.2, 3.3 before 3.3.8, 3.2 before 3.2.15, and 3.0.12 through 3.0.36, as used in the SMB subsystem in Apple Mac OS X 10.5.8 when Windows File Sharing is enabled, Fedora 11, and other operating systems, does not properly handle errors in resolving pathnames, which allows remote authenticated users to bypass intended sharing restrictions, and read, create, or modify files, in certain circumstances involving user accounts that lack home directories.

Affected Software

NameVendorStart VersionEnd Version
SambaSamba3.0.12 (including)3.0.12 (including)
SambaSamba3.0.13 (including)3.0.13 (including)
SambaSamba3.0.14 (including)3.0.14 (including)
SambaSamba3.0.14a (including)3.0.14a (including)
SambaSamba3.0.15 (including)3.0.15 (including)
SambaSamba3.0.16 (including)3.0.16 (including)
SambaSamba3.0.17 (including)3.0.17 (including)
SambaSamba3.0.18 (including)3.0.18 (including)
SambaSamba3.0.19 (including)3.0.19 (including)
SambaSamba3.0.20 (including)3.0.20 (including)
SambaSamba3.0.20a (including)3.0.20a (including)
SambaSamba3.0.20b (including)3.0.20b (including)
SambaSamba3.0.21 (including)3.0.21 (including)
SambaSamba3.0.21a (including)3.0.21a (including)
SambaSamba3.0.21b (including)3.0.21b (including)
SambaSamba3.0.21c (including)3.0.21c (including)
SambaSamba3.0.22 (including)3.0.22 (including)
SambaSamba3.0.23 (including)3.0.23 (including)
SambaSamba3.0.23a (including)3.0.23a (including)
SambaSamba3.0.23b (including)3.0.23b (including)
SambaSamba3.0.23c (including)3.0.23c (including)
SambaSamba3.0.23d (including)3.0.23d (including)
SambaSamba3.0.24 (including)3.0.24 (including)
SambaSamba3.0.25 (including)3.0.25 (including)
SambaSamba3.0.25-pre1 (including)3.0.25-pre1 (including)
SambaSamba3.0.25-pre2 (including)3.0.25-pre2 (including)
SambaSamba3.0.25-rc1 (including)3.0.25-rc1 (including)
SambaSamba3.0.25-rc2 (including)3.0.25-rc2 (including)
SambaSamba3.0.25-rc3 (including)3.0.25-rc3 (including)
SambaSamba3.0.25a (including)3.0.25a (including)
SambaSamba3.0.25b (including)3.0.25b (including)
SambaSamba3.0.25c (including)3.0.25c (including)
SambaSamba3.0.26 (including)3.0.26 (including)
SambaSamba3.0.26a (including)3.0.26a (including)
SambaSamba3.0.27 (including)3.0.27 (including)
SambaSamba3.0.27a (including)3.0.27a (including)
SambaSamba3.0.28 (including)3.0.28 (including)
SambaSamba3.0.28a (including)3.0.28a (including)
SambaSamba3.0.29 (including)3.0.29 (including)
SambaSamba3.0.30 (including)3.0.30 (including)
SambaSamba3.0.31 (including)3.0.31 (including)
SambaSamba3.0.32 (including)3.0.32 (including)
SambaSamba3.0.33 (including)3.0.33 (including)
SambaSamba3.0.34 (including)3.0.34 (including)
SambaSamba3.0.35 (including)3.0.35 (including)
SambaSamba3.0.36 (including)3.0.36 (including)
SambaSamba3.2 (including)3.2 (including)
SambaSamba3.2.0 (including)3.2.0 (including)
SambaSamba3.2.1 (including)3.2.1 (including)
SambaSamba3.2.2 (including)3.2.2 (including)
SambaSamba3.2.3 (including)3.2.3 (including)
SambaSamba3.2.4 (including)3.2.4 (including)
SambaSamba3.2.5 (including)3.2.5 (including)
SambaSamba3.2.6 (including)3.2.6 (including)
SambaSamba3.2.7 (including)3.2.7 (including)
SambaSamba3.2.8 (including)3.2.8 (including)
SambaSamba3.2.9 (including)3.2.9 (including)
SambaSamba3.2.10 (including)3.2.10 (including)
SambaSamba3.2.11 (including)3.2.11 (including)
SambaSamba3.2.12 (including)3.2.12 (including)
SambaSamba3.2.13 (including)3.2.13 (including)
SambaSamba3.2.14 (including)3.2.14 (including)
SambaSamba3.2.15 (including)3.2.15 (including)
SambaSamba3.3 (including)3.3 (including)
SambaSamba3.3.0 (including)3.3.0 (including)
SambaSamba3.3.1 (including)3.3.1 (including)
SambaSamba3.3.2 (including)3.3.2 (including)
SambaSamba3.3.3 (including)3.3.3 (including)
SambaSamba3.3.4 (including)3.3.4 (including)
SambaSamba3.3.5 (including)3.3.5 (including)
SambaSamba3.3.6 (including)3.3.6 (including)
SambaSamba3.3.7 (including)3.3.7 (including)
SambaSamba3.4 (including)3.4 (including)
SambaSamba3.4.0 (including)3.4.0 (including)
SambaSamba3.4.1 (including)3.4.1 (including)
Red Hat Enterprise Linux 4RedHatsamba-0:3.0.33-0.18.el4_8*
Red Hat Enterprise Linux 5RedHatsamba-0:3.0.33-3.15.el5_4*
Supplementary for Red Hat Enterprise Linux 5RedHatsamba3x-0:3.3.8-0.46.el5*
SambaUbuntudapper*
SambaUbuntudevel*
SambaUbuntuhardy*
SambaUbuntuintrepid*
SambaUbuntujaunty*

References